The vulnerability, if exploited, could allow an authenticated miscreant
(with privileges to access publication targets) to retrieve sensitive
information that could then be used to gain additional access to
downstream resources.
Metrics
Affected Vendors & Products
References
History
Fri, 22 Aug 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 21 Aug 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | The vulnerability, if exploited, could allow an authenticated miscreant (with privileges to access publication targets) to retrieve sensitive information that could then be used to gain additional access to downstream resources. | |
Title | AVEVA PI Integrator Insertion of Sensitive Information into Sent Data | |
Weaknesses | CWE-201 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: icscert
Published: 2025-08-21T19:57:26.099Z
Updated: 2025-08-21T20:13:40.413Z
Reserved: 2025-07-31T16:41:30.376Z
Link: CVE-2025-41415

Updated: 2025-08-21T20:13:36.367Z

Status : Awaiting Analysis
Published: 2025-08-21T20:15:33.053
Modified: 2025-08-22T18:08:51.663
Link: CVE-2025-41415

No data.